CVE-2024-11621
Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack.
Versions affected are : Remote Desktop Manager macOS 2024.3.9.0 and earlier Remote Desktop Manager Linux 2024.3.2.5 and earlier Remote Desktop Manager Android 2024.3.3.7 and earlier Remote Desktop Manager iOS 2024.3.3.0 and earlier
Remote Desktop Manager Powershell 2024.3.6.0 and earlier
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Puntuación base: 8.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.23%
- Percentil entre todas las CVEs puntuadas: 13
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
🎯 Técnicas ATT&CK
Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.
- Explotación
T1189Drive-by Compromiseinitial access75 % - Impacto principal
T1557.002ARP Cache Poisoningcredential access · collection85 % - Impacto secundario
T1212Exploitation for Credential Accesscredential access65 % - Impacto secundario
T1565.002Transmitted Data Manipulationimpact70 %
XSS-like: UI:R + certificado no validado = ataque MITM web interactivo. CWE-295 permite interceptar comunicaciones cifradas sin validar identidad remota, modificando datos (credenciales, sesiones) durante la conexión.
Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.
🛡️ Mitigaciones ATT&CK que cubren estas técnicas
Tecnologías afectadas (2)
CWE
- CWE-295
- CWE-295
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2024-11621",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2024-11621",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2025-02-10T15:38:05.343392Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 8.8,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 2.8
}
]
},
"affected": [
{
"source": "security@devolutions.net",
"affectedData": [
{
"vendor": "Devolutions",
"product": "Remote Desktop Manager",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "2024.3.9.0"
}
],
"platforms": [
"MacOS"
],
"defaultStatus": "unaffected"
},
{
"vendor": "Devolutions",
"product": "Remote Desktop Manager",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "2024.3.2.5"
}
],
"platforms": [
"Linux"
],
"defaultStatus": "unaffected"
},
{
"vendor": "Devolutions",
"product": "Remote Desktop Manager",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "2024.3.3.7"
}
],
"platforms": [
"Android"
],
"defaultStatus": "unaffected"
},
{
"vendor": "Devolutions",
"product": "Remote Desktop Manager",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "2024.3.3.0"
}
],
"platforms": [
"iOS"
],
"defaultStatus": "unaffected"
},
{
"vendor": "Devolutions",
"product": "Remote Desktop Manager",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "2024.3.6.0"
}
],
"platforms": [
"Powershell"
],
"defaultStatus": "unaffected"
}
]
}
],
"published": "2025-02-10T14:15:29.490",
"references": [
{
"url": "https://devolutions.net/security/advisories/DEVO-2025-0001/",
"tags": [
"Vendor Advisory"
],
"source": "security@devolutions.net"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "security@devolutions.net",
"description": [
{
"lang": "en",
"value": "CWE-295"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-295"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Missing certificate validation in Devolutions Remote Desktop Manager on macOS, iOS, Android, Linux allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack.\n\nVersions affected are :\nRemote Desktop Manager macOS 2024.3.9.0 and earlier\nRemote Desktop Manager Linux 2024.3.2.5 and earlier\nRemote Desktop Manager Android 2024.3.3.7 and earlier\nRemote Desktop Manager iOS 2024.3.3.0 and earlier\n\nRemote Desktop Manager Powershell 2024.3.6.0 and earlier"
},
{
"lang": "es",
"value": "La falta de validación de certificados en Devolutions Remote Desktop Manager en macOS, iOS, Android y Linux permite que un atacante intercepte y modifique las comunicaciones cifradas mediante un ataque de intermediario. Las versiones afectadas son: Remote Desktop Manager macOS 2024.3.9.0 y anteriores Remote Desktop Manager Linux 2024.3.2.5 y anteriores Remote Desktop Manager Android 2024.3.3.7 y anteriores Remote Desktop Manager iOS 2024.3.3.0 y anteriores Remote Desktop Manager Powershell 2024.3.6.0 y anteriores"
}
],
"lastModified": "2026-06-17T06:58:05.410",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:linux:*:*",
"vulnerable": true,
"matchCriteriaId": "CDD63147-B8F0-4E3A-B918-4E48099C59C0",
"versionEndExcluding": "2024.3.2.9"
},
{
"criteria": "cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:iphone_os:*:*",
"vulnerable": true,
"matchCriteriaId": "28CF225A-4283-4E40-8C8E-A96F876FBC0F",
"versionEndExcluding": "2024.3.4.0"
},
{
"criteria": "cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:android:*:*",
"vulnerable": true,
"matchCriteriaId": "BFF11BD1-8E0E-4C36-BE92-1021A528A52E",
"versionEndExcluding": "2024.3.4.2"
},
{
"criteria": "cpe:2.3:a:devolutions:remote_desktop_manager:*:*:*:*:*:macos:*:*",
"vulnerable": true,
"matchCriteriaId": "3CCF282D-0E3B-4AD1-8327-550CA6E3F3A0",
"versionEndExcluding": "2024.3.10.3"
},
{
"criteria": "cpe:2.3:a:devolutions:remote_desktop_manager_powershell:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7A58AC78-3998-411F-8935-EE6AE0C13E55",
"versionEndExcluding": "2024.3.7"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "security@devolutions.net"
}